HackerFeeds

CyberSecurity News

Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains

The Hacker News
· October 7, 2026

AI summary

Attackers compromised the registries for three country-code top-level domains, allowing them to obtain unauthorized HTTPS certificates for several Google domains. The affected domains are those ending in .gh, .sl, and .as, which correspond to Ghana, Sierra Leone, and American Samoa, respectively. Google's internal systems were not breached in the attack. The unauthorized certificates could be used by attackers to impersonate legitimate sites over encrypted connections. This poses a risk to any domain using these top-level domains, rather than Google's own systems. The compromise was reported by Google on October 6.

Read the full article at The Hacker Newsthehackernews.com/2026/10/attackers-hijack-gh-sl-and-as.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.